SolarWinds Platform是美国SolarWinds公司的一个统一监控、可观察性和服务管理平台。 SolarWinds Platform 2022.3 版本及之前版本存在安全漏洞,该漏洞源于不安全的直接对象引用 (IDOR)。具有节点管理权限的攻击者能够查看和编辑所有节点。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| SolarWinds | SolarWinds Platform | 2022.3 and previous ~ 2022.3 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-36958 | 8.8 HIGH | SolarWinds Platform Deserialization of Untrusted Data |
| CVE-2022-38108 | 7.2 HIGH | SolarWinds Platform Deserialization of Untrusted Data |
| CVE-2022-36957 | 7.2 HIGH | SolarWinds Platform Deserialization of Untrusted Data |
No comments yet